[Openswan Users] Initiate IKE on an outbound packet

Paul Wouters paul at xelerance.com
Mon Oct 5 16:40:43 EDT 2009


On Mon, 5 Oct 2009, Philip Bellino wrote:

> I have Openswan configured for a tunnel.  Upon an /etc/init.d/ipsec start” with “auto-start” in the
> connection profiles, IKE gets negotiated and it works fine.  With “auto-add” and then a subsequent
> “/usr/local/sbin/ipsec auto –up conn-name” , IKE gets negotiated and that works fine as well.
> 
> Is there a way to start the Openswan IKE negotiation based on receiving an outgoing packet instead.

On klips, auto=route does that I believe. I am not sure if that works on NETKEY at this moment.

Paul


More information about the Users mailing list